MEDIUM · 4.0

CVE-2006-4491

Directory traversal vulnerability in Cybozu Collaborex, AG before 1.2(1.5), AG Pocket before 5.2(0.8), Mailwise before 3.0(0.3), and Garoon 1 before 1.5(4.1) allows remote authenticated users to read ...

Vulnerability Description

Directory traversal vulnerability in Cybozu Collaborex, AG before 1.2(1.5), AG Pocket before 5.2(0.8), Mailwise before 3.0(0.3), and Garoon 1 before 1.5(4.1) allows remote authenticated users to read arbitrary files via unspecified vectors.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
CybozuCollaborexAll versions
CybozuCybozu Ag1.2\(1.4\)
CybozuCybozu Pocket5.2\(0.7\)
CybozuGaroon 11.5\(4.0\)
CybozuMailwise3.0\(0.2\)

References

FAQ

What is CVE-2006-4491?

CVE-2006-4491 is a vulnerability with a CVSS score of 4.0 (MEDIUM). Directory traversal vulnerability in Cybozu Collaborex, AG before 1.2(1.5), AG Pocket before 5.2(0.8), Mailwise before 3.0(0.3), and Garoon 1 before 1.5(4.1) allows remote authenticated users to read ...

How severe is CVE-2006-4491?

CVE-2006-4491 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-4491?

Check the references section above for vendor advisories and patch information. Affected products include: Cybozu Collaborex, Cybozu Cybozu Ag, Cybozu Cybozu Pocket, Cybozu Garoon 1, Cybozu Mailwise.